474172261 / DataProtectorLinks
A simple ransomware defender.It uses minifilter to filt "rewrite" and "delete" events in kernel.And it handles event in user mode.
☆27Updated 7 years ago
Alternatives and similar repositories for DataProtector
Users that are interested in DataProtector are comparing it to the libraries listed below
Sorting:
- ☆33Updated 5 years ago
- A tool to investigate the Windows device manager☆12Updated 6 years ago
- ☆29Updated 4 years ago
- use crystalCPUID to identify vt-x & amd-v☆17Updated 10 years ago
- x64 Kernel Hooks Detection☆24Updated 8 years ago
- Final Transparent encrypted version☆14Updated 8 years ago
- ☆12Updated 8 years ago
- Kernel-mode file scanner☆19Updated 7 years ago
- Wow64 syscall hook☆42Updated 8 years ago
- Open Source Libraries Collection☆24Updated 9 years ago
- copy of tdifw lib☆10Updated 8 years ago
- ☆12Updated 8 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Updated 8 years ago
- ☆17Updated 9 years ago
- Protect process fsfilter driver. Windows x64☆36Updated 9 years ago
- Windows Monitoring Agent (process creation + DLL loading monitor + network monitor + file system access monitor + etc)☆63Updated 6 years ago
- PE Infector/Cryptor source code☆16Updated 8 years ago
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆21Updated 2 years ago
- ☆12Updated 8 years ago
- some classes which can help me to program kernel driver in Windows.☆16Updated 7 years ago
- ☆14Updated 7 years ago
- A drop-in replacement for the C++ STL for kernel mode Windows drivers. The goal is to have implementations for things like the standard a…☆32Updated 9 years ago
- Bypass HackShield several specific SSDT hook in Ring0☆24Updated 10 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆26Updated 11 years ago
- a network filter using NDIS hook technique☆19Updated 12 years ago
- UI application that can compare PE images in memory or in raw PE file☆19Updated 11 years ago
- An open source library for operating the Windows Overlay Filter driver.☆22Updated 6 years ago
- Event Tracing for Windows Custom Events☆21Updated 10 years ago
- Shareds for kernel developement☆28Updated 11 years ago
- it can extract functions from .dll, .exe, .sys and it be work! :)☆40Updated 6 years ago